CVE-2024-38475
קריטית 9.1 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Apache HTTP Server Improper Escaping of Output Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
תיאור (מקור, אנגלית)
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure. Substitutions in server context that use a backreferences or variables as the first segment of the substitution are affected. Some unsafe RewiteRules will be broken by this change and the rewrite flag "UnsafePrefixStat" can be used to opt back in once ensuring the substitution is appropriately constrained.
מדדים
- CVSS 3.1
-
9.1 (CRITICAL)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N - EPSS — סבירות ניצול
- 100% (אחוזון 100) נכון ל-26/7/2026
- CWE
- CWE-116
מוצרים מושפעים
apache: http server; netapp: ontap 9; sonicwall: sma 200 firmware; sonicwall: sma 200; sonicwall: sma 210 firmware; sonicwall: sma 210; sonicwall: sma 400 firmware; sonicwall: sma 400; sonicwall: sma 410 firmware; sonicwall: sma 410; sonicwall: sma 500v firmware; sonicwall: sma 500v
קישורים
- https://httpd.apache.org/security/vulnerabilities_24.html Vendor Advisory
- https://httpd.apache.org/security/vulnerabilities_24.html Vendor Advisory
- https://github.com/apache/httpd/commit/9a6157d1e2f7ab15963020381054b48782bc18cf Patch
- https://security.netapp.com/advisory/ntap-20240712-0001/ Third Party Advisory
- http://www.openwall.com/lists/oss-security/2024/07/01/8 Third Party Advisory
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0018 Third Party Advisory
- https://security.netapp.com/advisory/ntap-20240712-0001/ Third Party Advisory
- https://www.blackhat.com/us-24/briefings/schedule/index.html#confusion-attacks… Third Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-202… Third Party AdvisoryUS Government Resource